Cyberveillecurated by Decio
Nuage de tags
Mur d'images
Quotidien
Flux RSS
  • Flux RSS
  • Daily Feed
  • Weekly Feed
  • Monthly Feed
Filtres

Liens par page

  • 20 links
  • 50 links
  • 100 links

Filtres

Untagged links
page 102 / 206
4101 résultats taggé EN  ✕
Phobos Ransomware Aggressively Targeting U.S. Critical Infrastructure https://thehackernews.com/2024/03/phobos-ransomware-aggressively.html
06/03/2024 10:15:25
QRCode
archive.org

U.S. cybersecurity and intelligence agencies have warned of Phobos ransomware attacks targeting government and critical infrastructure entities, outlining the various tactics and techniques the threat actors have adopted to deploy the file-encrypting malware.

"Structured as a ransomware-as-a-service (RaaS) model, Phobos ransomware actors have targeted entities including municipal and county governments, emergency services, education, public healthcare, and critical infrastructure to successfully ransom several million in U.S. dollars," the government said.

thehackernews EN 2024 Phobos Ransomware CISA US Critical-infrastructure
It’ll be back: Attackers still abusing Terminator tool and variants https://news.sophos.com/en-us/2024/03/04/itll-be-back-attackers-still-abusing-terminator-tool-and-variants/?ref=news.risky.biz
06/03/2024 06:44:17
QRCode
archive.org
thumbnail

First released in May 2023, an EDR killer – and the vulnerable Zemana drivers it leverages – are still of interest to threat actors, along with variants and ported versions

sophos EN Terminator EDR-killer Zemana driver
ACEMAGIC Addresses Virus Incident: Proactive Measures and Solutions https://www.acemagic.com/blogs/about-ace-mini-pc/acemagic-mini-pc-virus-incident-comprehensive-resolution-and-future-security-measures?ref=news.risky.biz
06/03/2024 06:43:23
QRCode
archive.org
thumbnail

Learn more about ACEMAGIC Mini PC's swift resolution to the virus incident, along with robust future security measures. Your safety is our top priority.

acemagic EN 2024 PC malaware incident Virus
RATs Distributed Through Skype, Zoom, & Google Meet Lures https://www.zscaler.com/blogs/security-research/android-and-windows-rats-distributed-online-meeting-lures
06/03/2024 06:41:27
QRCode
archive.org
thumbnail

Threat actors are creating and using fake Skype, Zoom, and Google Meet pages to spread RATs.

zscaler EN 2024 fake Skype Zoom meet RAT Lures
Rapid7 flames JetBrains over vulnerability disclosure https://www.theregister.com/2024/03/05/rapid7_jetbrains_vuln_disclosure_dispute/
06/03/2024 06:35:24
QRCode
archive.org
thumbnail

Security shop Rapid7 is criticizing JetBrains for flouting its policy against silent patching regarding fixes for two fresh vulnerabilities in the TeamCity CI/CD server.

Rapid7 says it reported the two TeamCity vulnerabilities in mid-February, claiming JetBrains soon after suggested releasing patches for the flaws before publicly disclosing them.

Such a move is typically seen as a no-no by the infosec community, which favors transparency, but there's apparently a time and a place for these things.

theregister EN 2024 Rapid7 flames JetBrains
Blackcat ransomware site reportedly seized but UK agency denies responsibility https://www.reuters.com/technology/cybersecurity/blackcat-ransomware-site-claims-it-was-seized-uk-law-enforcement-denies-being-2024-03-05/
05/03/2024 17:27:00
QRCode
archive.org

website used by hackers responsible for a breach at UnitedHealth Group (UNH.N), opens new tab has been replaced by a notice saying it has been seized by international law enforcement.
But at least one of the agencies allegedly responsible said it had nothing to do with the seizure, raising the possibility that the hackers - who also go by the moniker ALPHV - faked their own takedown.
A message posted to the website of the Blackcat hacking gang on Tuesday said it had been impounded "as part of a coordinated law enforcement action" by U.S. authorities and other law enforcement agencies. Among the logos of non-American agencies involved were those of Europol and Britain's National Crime Agency.

reuters EN 2024 AlphV UnitedHealth-Group BlackCat ransomware UK denies
Developing: AlphV allegedly scammed Change Healthcare and its own affiliate (1) https://www.databreaches.net/developing-alphv-allegedly-scammed-change-healthcare-and-its-own-affiliate/
05/03/2024 17:25:41
QRCode
archive.org

Developing: Someone claiming to be an “affiliate plus” for AlphV claims they were responsible for the Change Healthcare attack but that AlphV stole the payment Change Healthcare had made and suspended the affiliate’s account.

The affiliate’s claims appeared on Ramp Forum and have been circulating since then. The post can be seen below, via @vx-underground:

databreaches.net EN 2024 AlphV affiliate scam Change Healthcare
BlackCat ransomware shuts down in exit scam, blames the "feds" https://www.bleepingcomputer.com/news/security/blackcat-ransomware-shuts-down-in-exit-scam-blames-the-feds/
05/03/2024 16:57:00
QRCode
archive.org
thumbnail

The BlackCat ransomware gang is pulling an exit scam, trying to shut down and run off with affiliates' money by pretending the FBI seized their site and infrastructure.

bleepingcomputer EN 2024 ALPHV BlackCat Exit-Scam Ransomware
Ukraine Claims it Hacked Russian MoD - Infosecurity Magazine https://www.infosecurity-magazine.com/news/ukraine-claims-it-hacked-russian/
05/03/2024 14:48:07
QRCode
archive.org
thumbnail

Hackers operating from Ukraine’s Main Intelligence Directorate (GUR) have claimed another scalp; the Russian Ministry of Defense (MoD).

The GUR, part of Kyiv’s Ministry of Defense, said a “special operation” enabled it to breach the servers of the Russian MoD (Minoborony) to obtain sensitive documents.

These included orders and reports apparently circulated among over 2000 structural units of the ministry.

infosecurity-magazine EN 2024 Minoborony MoD Russia-Ukraine-war GUR breach
CVE-2024-21762 Vulnerability Scanner for FortiGate… https://bishopfox.com/blog/cve-2024-21762-vulnerability-scanner-for-fortigate-firewalls
05/03/2024 14:45:56
QRCode
archive.org
thumbnail

Discover vulnerable FortiGate firewalls with the Bishop Fox CVE-2024-21762 vulnerability scanner. Learn more here!

Bishop-Fox bishopfox EN 2024 CVE-2024-21762 FortiGate
How AMOS macOS Stealer Avoids Detection https://blog.kandji.io/amos-macos-stealer-analysis
05/03/2024 09:44:37
QRCode
archive.org
thumbnail

Kandji threat analysis reveals how the AMOS macOS stealer constantly changes its hash signatures while maintaining its functionality.

kandji EN 2024 AMOS macOS Stealer
CVE-2024-27198 and CVE-2024-27199: JetBrains TeamCity Multiple Authentication Bypass Vulnerabilities (FIXED) https://www.rapid7.com/blog/post/2024/03/04/etr-cve-2024-27198-and-cve-2024-27199-jetbrains-teamcity-multiple-authentication-bypass-vulnerabilities-fixed/
04/03/2024 21:00:17
QRCode
archive.org
thumbnail

In February 2024, Rapid7’s vulnerability research team identified two new vulnerabilities affecting JetBrains TeamCity CI/CD server:

  • CVE-2024-27198 is an authentication bypass vulnerability in the web component of TeamCity that arises from an alternative path issue (CWE-288) and has a CVSS base score of 9.8 (Critical).
  • CVE-2024-27199 is an authentication bypass vulnerability in the web component of TeamCity that arises from a path traversal issue (CWE-22) and has a CVSS base score of 7.3 (High).
rapid7 EN 2024 research JetBrains TeamCity CVE-2024-27198 CVE-2024-27199
Police seized Crimemarket, the largest German-speaking cybercrime marketplace https://securityaffairs.com/159813/cyber-crime/germany-police-seized-crimemarket.html
04/03/2024 19:26:07
QRCode
archive.org
thumbnail

German police seized the largest German-speaking cybercrime marketplace Crimemarket and arrested one of its operators.

securityaffairs EN 2024 Germany Crimemarket seized police
BlackCat ransomware turns off servers amid claim they stole $22 million ransom https://www.bleepingcomputer.com/news/security/blackcat-ransomware-turns-off-servers-amid-claim-they-stole-22-million-ransom/
04/03/2024 19:18:05
QRCode
archive.org
thumbnail

The ALPHV/BlackCat ransomware gang has shut down its servers amid claims that they scammed the affiliate responsible for the attack on Optum, the operator of the Change Healthcare platform, of $22 million.

bleepingcomputer EN 2024 ALPHV BlackCat Healthcare Optum Ransomware UnitedHealth-Group
Hackers Behind the Change Healthcare Ransomware Attack Just Received a $22 Million Payment https://www.wired.com/story/alphv-change-healthcare-ransomware-payment/
04/03/2024 19:14:36
QRCode
archive.org
thumbnail

The transaction, visible on Bitcoin's blockchain, suggests the victim of one of the worst ransomware attacks in years may have paid a very large ransom.

wired EN 2024 ransomware bitcoin blockchain crime healthcare ALPHV Alphv-BlackCat
Russia’s chief propagandist leaks intercepted German military Webex conversation https://therecord.media/german-air-force-conversation-leaked-russia
04/03/2024 17:10:42
QRCode
archive.org
thumbnail

Russia has been accused of attempting to inflame divisions in Germany by publishing an intercepted conversation in which Bundeswehr officials discuss the country’s support for Ukraine, particularly around the supply of Taurus cruise missiles.

The 38-minute conversation, which took place on February 19, was first published on social media platform Telegram by Margarita Simonyan, the editor-in-chief of RT and a sanctioned propagandist, who said the recording had been provided to her by “comrades in uniform.”

therecord.media EN 2024 Russia Germany air-force leak webex Russia-Ukraine-war
Ubiquiti owners warned Moscow may build another botnet • The Register https://www.theregister.com/2024/02/28/ubiquiti_botnet_second_warning/?is=e4f6b16c6de31130985364bb824bcb39ef6b2c4e902e4e553f0ec11bdbefc118
04/03/2024 13:49:43
QRCode
archive.org
thumbnail

Non-techies told to master firmware upgrades and firewall rules. For the infosec hardheads: have some IOCs

Original joint-cybersecurity-advisory

theregister EN 2024 Ubiquiti-EdgeRouter Ubiquiti joint-advosiry
ALPHV/BlackCat hits healthcare after retaliation threat, FBI says https://www.scmagazine.com/news/alphv-blackcat-hits-healthcare-after-retaliation-threat-fbi-says?is=e4f6b16c6de31130985364bb824bcb39ef6b2c4e902e4e553f0ec11bdbefc118
04/03/2024 12:35:41
QRCode
archive.org
thumbnail

The gang claimed responsibility for a high-profile attack against Change Healthcare Wednesday.

scmagazine EN 2024 CISA ALPHV BlackCat FBI CISA Healthcare
Popular video doorbells can be easily hijacked, researchers find https://techcrunch.com/2024/02/29/popular-video-doorbells-eken-tuck-hijacked-researchers/
03/03/2024 20:23:42
QRCode
archive.org
thumbnail

Walmart and Temu pulled the affected doorbell cameras from their stores. Amazon and others have taken no action.

techcrunch EN 2024 doorbells Walmart IoT EKEN
FBI’s LockBit Takedown Postponed a Ticking Time Bomb in Fulton County, Ga. – Krebs on Security https://krebsonsecurity.com/2024/02/fbis-lockbit-takedown-postponed-a-ticking-time-bomb-in-fulton-county-ga/
03/03/2024 20:20:02
QRCode
archive.org

The FBI’s takedown of the LockBit ransomware group last week came as LockBit was preparing to release sensitive data stolen from government computer systems in Fulton County, Ga. But LockBit is now regrouping, and the gang says it will publish the stolen Fulton County data on March 2 unless paid a ransom. LockBit claims the cache includes documents tied to the county’s ongoing criminal prosecution of former President Trump, but court watchers say teaser documents published by the crime gang suggest a total leak of the Fulton County data could put lives at risk and jeopardize a number of other criminal trials

krebsonsecurity EN 2024 lockbit Fulton-County leak Trump FBI claim
page 102 / 206
4678 links
Shaarli - The personal, minimalist, super-fast, database free, bookmarking service par la communauté Shaarli - Theme by kalvn - Curated by Decio